They do write dynamic profiles for what they spawn via internal/pkg/security/apparmor/apparmor_* that is something different AFAICS.
But what you ask for is there - https://github.com/apptainer/apptainer/blob/main/dist/debian/apparmor- userns And that since 1.3.4 so we are not "just" behind. It is essentially about upstream doing - https://github.com/apptainer/apptainer/commit/0417ee8a614a6d84e5d663df8619a538f6c570cb - https://github.com/apptainer/apptainer/commit/22fdbf7076cfc5479360ccfc67d14cedeb830886 in "their" Debian packaging and Debians deb packaging not doing the same. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2164911 Title: Non-root users cannot run containers because of missing AppArmor profile To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/apptainer/+bug/2164911/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
